← Vulnerability feed

Vulnerability record · CVE-2006-5417 · published 20 October 2006

CVE-2006-5417: Mcafee internet security suite vulnerability

MMcafee · Internet Security Suite

McAfee Network Agent (mcnasvc.exe) 1.0.178.0, as used by multiple McAfee products possibly including Internet Security Suite, Personal Firewall Plus, and VirusScan, allows remote attackers to cause a denial of service (agent crash) via a long packet, possibly because of an invalid string position field value. NOTE: some of these details are obtained from third party information.

5.0 CVSS 2.0 Medium EPSS 1.8% · top 22.6%
5.0CVSS 2.0 base score
1.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
4Affected product versions listed by NVD
14References
16 Jun 2026Last modified by NVD

Description

McAfee Network Agent (mcnasvc.exe) 1.0.178.0, as used by multiple McAfee products possibly including Internet Security Suite, Personal Firewall Plus, and VirusScan, allows remote attackers to cause a denial of service (agent crash) via a long packet, possibly because of an invalid string position field value. NOTE: some of these details are obtained from third party information.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2006-5417 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2007-2584Mcafee security center vulnerabilityBuffer overflow in the IsOldAppInstalled function in the McSubMgr.McSubMgr Subscription Manager ActiveX control (MCSUBMGR.DLL) in McAfee SecurityCent…EPSS 9.7%7.6CVE-2009-1348Mcafee active virus defense improper input validation vulnerabilityThe AV engine before DAT 5600 in McAfee VirusScan, Total Protection, Internet Security, SecurityShield for Microsoft ISA Server, Security for Microso…EPSS 2.8%7.2CVE-2005-1107Mcafee internet security suite vulnerabilityMcAfee Internet Security Suite 2005 uses insecure default ACLs for installed files, which allows local users to gain privileges or disable protection…EPSS 0.34%7.2CVE-2004-0831Mcafee virusscan vulnerabilityMcAfee VirusScan 4.5.1 does not drop SYSTEM privileges before allowing users to browse for files via the "System Scan" properties of the System Tray …EPSS 0.39%7.2CVE-2000-0119Mcafee virusscan vulnerabilityThe default configurations for McAfee Virus Scan and Norton Anti-Virus virus checkers do not check files in the RECYCLED folder that is used by the W…EPSS 1.2%6.9CVE-2002-2282Mcafee virusscan vulnerabilityMcAfee VirusScan 4.5.1, when the WebScanX.exe module is enabled, searches for particular DLLs from the user's home directory, even when browsing the …EPSS 0.33%6.8CVE-2006-3961Mcafee antispyware memory buffer overflow vulnerabilityBuffer overflow in McSubMgr ActiveX control (mcsubmgr.dll) in McAfee Security Center 6.0.23 for Internet Security Suite 2006, Wireless Home Network S…EPSS 34%5.1CVE-2005-3377Mcafee internet security suite vulnerabilityMultiple interpretation error in (1) McAfee Internet Security Suite 7.1.5 version 9.1.08 with the 4.4.00 engine and (2) McAfee Corporate 8.0.0 patch …EPSS 1.3%

Source: NIST National Vulnerability Database (record CVE-2006-5417), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.